Publication:
A Sensitive Data Leakage Detection and Privacy Policy Analyzing Application for Android Systems (PriVot)

dc.contributor.authorAtapattu, H.N.
dc.contributor.authorFernando, W.S.N.
dc.contributor.authorSomasiri, J.P.A.K.
dc.contributor.authorLokuge, P.M.K.
dc.contributor.authorSenarathne, A. N.
dc.contributor.authorTissera, M.
dc.date.accessioned2022-02-07T05:56:44Z
dc.date.available2022-02-07T05:56:44Z
dc.date.issued2021-12-09
dc.description.abstractMobile applications can have access to various sensitive information to accomplish the business requirements as well as user requirements. Due to the sensitivity of this information, app developers are bound by the regulations to provide a privacy policy that describes their data collection practices. However, there were many incidents where the privacy policies were inconsistent with the actual data practices. Additionally, the privacy policies are often too long and difficult to grasp just by reading them due to their complex language. To address this hurdle, we propose a mobile application “PriVot”. PriVot has a privacy policy analyzer built with a hierarchical classifier using convolutional neural networks to provide a detailed and unambiguous summary indicating the data that is being collected by each app and their purpose for being collected Furthermore, it monitors the network traffic of the device with the aid of a Transport Layer Security(TLS) proxy, a Forwarder, and a Traffic Analyzer that operates on-device without requiring root privileges to identify potential data leakages and privacy policy violations. We present "PriVot" which achieved a 67.4% accuracy on privacy policy analysis and a 72.5% throughput at a low latency overhead with the network traffic monitoring.en_US
dc.description.sponsorshipCo-Sponsore:Institute of Electrical and Electronic Engineers (IEEE), Academic sponsor: SLIIT UNI London, Gold Sponsor :Stock Exchange Group (LSEG)en_US
dc.identifier.doi10.1109/ICAC54203.2021.9671075en_US
dc.identifier.issn978-1-6654-0862-2/21
dc.identifier.urihttps://rda.sliit.lk/handle/123456789/954
dc.language.isoenen_US
dc.publisher2021 3rd International Conference on Advancements in Computing (ICAC), SLIITen_US
dc.subjectnetwork trafficen_US
dc.subjectTransport Layer Security interceptionen_US
dc.subjectAndroid SDKen_US
dc.subjectprivacy policy analyzeren_US
dc.subjectsocket programmingen_US
dc.subjectproxy serveren_US
dc.titleA Sensitive Data Leakage Detection and Privacy Policy Analyzing Application for Android Systems (PriVot)en_US
dc.typeArticleen_US
dspace.entity.typePublication

Files

Original bundle

Now showing 1 - 1 of 1
No Thumbnail Available
Name:
A_Sensitive_Data_Leakage_Detection_and_Privacy_Policy_Analyzing_Application_for_Android_Systems_PriVot.pdf
Size:
1.4 MB
Format:
Adobe Portable Document Format
Description:

License bundle

Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.71 KB
Format:
Item-specific license agreed upon to submission
Description: